JP6533292B2 - 長期デジタル証明書の検証に基づく短期デジタル証明書の発行 - Google Patents

長期デジタル証明書の検証に基づく短期デジタル証明書の発行 Download PDF

Info

Publication number
JP6533292B2
JP6533292B2 JP2017529776A JP2017529776A JP6533292B2 JP 6533292 B2 JP6533292 B2 JP 6533292B2 JP 2017529776 A JP2017529776 A JP 2017529776A JP 2017529776 A JP2017529776 A JP 2017529776A JP 6533292 B2 JP6533292 B2 JP 6533292B2
Authority
JP
Japan
Prior art keywords
digital certificate
customer
term digital
long
certification authority
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
JP2017529776A
Other languages
English (en)
Japanese (ja)
Other versions
JP2017537548A (ja
Inventor
ザチャリー ボウェン、ピーター
ザチャリー ボウェン、ピーター
Original Assignee
アマゾン・テクノロジーズ、インコーポレイテッド
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by アマゾン・テクノロジーズ、インコーポレイテッド filed Critical アマゾン・テクノロジーズ、インコーポレイテッド
Publication of JP2017537548A publication Critical patent/JP2017537548A/ja
Application granted granted Critical
Publication of JP6533292B2 publication Critical patent/JP6533292B2/ja
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/32Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
    • H04L9/321Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving a third party or a trusted authority
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/32Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
    • H04L9/3263Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving certificates, e.g. public key certificate [PKC] or attribute certificate [AC]; Public key infrastructure [PKI] arrangements
    • H04L9/3268Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving certificates, e.g. public key certificate [PKC] or attribute certificate [AC]; Public key infrastructure [PKI] arrangements using certificate validation, registration, distribution or revocation, e.g. certificate revocation list [CRL]

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Management, Administration, Business Operations System, And Electronic Commerce (AREA)
  • Financial Or Insurance-Related Operations Such As Payment And Settlement (AREA)
JP2017529776A 2014-12-15 2015-12-14 長期デジタル証明書の検証に基づく短期デジタル証明書の発行 Active JP6533292B2 (ja)

Applications Claiming Priority (3)

Application Number Priority Date Filing Date Title
US14/570,867 US9843452B2 (en) 2014-12-15 2014-12-15 Short-duration digital certificate issuance based on long-duration digital certificate validation
US14/570,867 2014-12-15
PCT/US2015/065634 WO2016140724A2 (en) 2014-12-15 2015-12-14 Short-duration digital certificate issuance based on long-duration digital certificate validation

Related Child Applications (1)

Application Number Title Priority Date Filing Date
JP2019096699A Division JP7131756B2 (ja) 2014-12-15 2019-05-23 長期デジタル証明書の検証に基づく短期デジタル証明書の発行

Publications (2)

Publication Number Publication Date
JP2017537548A JP2017537548A (ja) 2017-12-14
JP6533292B2 true JP6533292B2 (ja) 2019-06-19

Family

ID=56112223

Family Applications (3)

Application Number Title Priority Date Filing Date
JP2017529776A Active JP6533292B2 (ja) 2014-12-15 2015-12-14 長期デジタル証明書の検証に基づく短期デジタル証明書の発行
JP2019096699A Active JP7131756B2 (ja) 2014-12-15 2019-05-23 長期デジタル証明書の検証に基づく短期デジタル証明書の発行
JP2022001322A Active JP7393083B2 (ja) 2014-12-15 2022-01-06 長期デジタル証明書の検証に基づく短期デジタル証明書の発行

Family Applications After (2)

Application Number Title Priority Date Filing Date
JP2019096699A Active JP7131756B2 (ja) 2014-12-15 2019-05-23 長期デジタル証明書の検証に基づく短期デジタル証明書の発行
JP2022001322A Active JP7393083B2 (ja) 2014-12-15 2022-01-06 長期デジタル証明書の検証に基づく短期デジタル証明書の発行

Country Status (9)

Country Link
US (3) US9843452B2 (enExample)
EP (2) EP3496333B1 (enExample)
JP (3) JP6533292B2 (enExample)
KR (3) KR102451297B1 (enExample)
CN (2) CN112491553B (enExample)
AU (1) AU2015384754B2 (enExample)
CA (1) CA2969237C (enExample)
SG (2) SG11201704594TA (enExample)
WO (1) WO2016140724A2 (enExample)

Families Citing this family (26)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US10454899B1 (en) * 2015-03-16 2019-10-22 Amazon Technologies, Inc. Controlling firewall ports in virtualized environments through public key cryptography
US10063536B2 (en) * 2016-03-25 2018-08-28 Ca, Inc. Short term or one-time-use X.509 digital certificates
US10425417B2 (en) 2017-03-08 2019-09-24 Bank Of America Corporation Certificate system for verifying authorized and unauthorized secure sessions
WO2018165138A1 (en) * 2017-03-08 2018-09-13 Amazon Technologies, Inc. Digital certificate issuance and monitoring
US10374808B2 (en) * 2017-03-08 2019-08-06 Bank Of America Corporation Verification system for creating a secure link
US10432595B2 (en) * 2017-03-08 2019-10-01 Bank Of America Corporation Secure session creation system utililizing multiple keys
US10361852B2 (en) * 2017-03-08 2019-07-23 Bank Of America Corporation Secure verification system
US10454690B1 (en) * 2017-08-04 2019-10-22 Amazon Technologies, Inc. Digital certificates with distributed usage information
CN108595318B (zh) * 2018-03-31 2021-05-14 西安电子科技大学 Rfc制导的ssl/tls实现中数字证书验证模块的差异测试方法
US11323274B1 (en) 2018-04-03 2022-05-03 Amazon Technologies, Inc. Certificate authority
US11888997B1 (en) * 2018-04-03 2024-01-30 Amazon Technologies, Inc. Certificate manager
US11563590B1 (en) 2018-04-03 2023-01-24 Amazon Technologies, Inc. Certificate generation method
CN110380857B (zh) * 2018-04-12 2020-09-11 中国移动通信有限公司研究院 数字证书处理方法及装置、区块链节点、存储介质
US11921905B2 (en) 2018-04-30 2024-03-05 Google Llc Secure collaboration between processors and processing accelerators in enclaves
EP4155996B1 (en) 2018-04-30 2025-10-15 Google LLC Enclave interactions
EP3788518B1 (en) 2018-04-30 2024-11-20 Google LLC Managing enclave creation through a uniform enclave interface
EP3588844A1 (en) * 2018-06-26 2020-01-01 BBVA Next Technologies, S.L. Method for monitoring digital certificates
JP6952661B2 (ja) * 2018-08-30 2021-10-20 株式会社東芝 情報処理装置、通信機器、情報処理システム、情報処理方法、および情報処理プログラム
KR102680551B1 (ko) * 2019-01-09 2024-07-01 현대자동차주식회사 클라우드 기반의 edr 데이터 관리 방법 및 시스템
JP7300845B2 (ja) * 2019-02-15 2023-06-30 三菱重工業株式会社 制御装置、産業用制御システムおよび暗号鍵寿命延長方法
JP7250587B2 (ja) * 2019-03-28 2023-04-03 キヤノン株式会社 通信装置、制御方法、および、プログラム
KR102224726B1 (ko) * 2019-04-12 2021-03-08 주식회사 한국보안인증 IoT 디바이스를 위한 임시 인증서 발급 방법
US11626975B2 (en) * 2020-03-26 2023-04-11 Arris Enterprises Llc Secure online issuance of customer-specific certificates with offline key generation
CN111935169B (zh) * 2020-08-20 2021-10-26 腾讯云计算(北京)有限责任公司 一种业务数据访问方法、装置、设备及存储介质
US11683188B2 (en) * 2020-10-13 2023-06-20 Google Llc Representing certificate expiration with time-based intermediate certificate authorities
WO2025094184A1 (en) * 2023-11-05 2025-05-08 Claritas Software Solutions Ltd Method for long-term media sealing

Family Cites Families (46)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US5671279A (en) * 1995-11-13 1997-09-23 Netscape Communications Corporation Electronic commerce using a secure courier system
US5872844A (en) * 1996-11-18 1999-02-16 Microsoft Corporation System and method for detecting fraudulent expenditure of transferable electronic assets
US5903882A (en) * 1996-12-13 1999-05-11 Certco, Llc Reliance server for electronic transaction system
US6125349A (en) * 1997-10-01 2000-09-26 At&T Corp. Method and apparatus using digital credentials and other electronic certificates for electronic transactions
US6233341B1 (en) * 1998-05-19 2001-05-15 Visto Corporation System and method for installing and using a temporary certificate at a remote site
US7461250B1 (en) * 1999-07-22 2008-12-02 Rsa Security, Inc. System and method for certificate exchange
US6763459B1 (en) * 2000-01-14 2004-07-13 Hewlett-Packard Company, L.P. Lightweight public key infrastructure employing disposable certificates
US7010683B2 (en) 2000-01-14 2006-03-07 Howlett-Packard Development Company, L.P. Public key validation service
US7340600B1 (en) * 2000-01-14 2008-03-04 Hewlett-Packard Development Company, L.P. Authorization infrastructure based on public key cryptography
US6854057B2 (en) 2001-09-06 2005-02-08 America Online, Inc. Digital certificate proxy
JP4018584B2 (ja) * 2003-04-01 2007-12-05 キヤノン株式会社 無線接続装置の認証方法及び無線接続装置
US7496755B2 (en) * 2003-07-01 2009-02-24 International Business Machines Corporation Method and system for a single-sign-on operation providing grid access and network access
JP4712326B2 (ja) * 2003-07-25 2011-06-29 株式会社リコー 通信装置、通信システム、通信方法及びプログラム
US8015399B2 (en) * 2003-09-30 2011-09-06 Ricoh Company, Ltd. Communication apparatus, communication system, certificate transmission method and program
US20050091658A1 (en) * 2003-10-24 2005-04-28 Microsoft Corporation Operating system resource protection
JP4823704B2 (ja) 2006-02-01 2011-11-24 Kddi株式会社 認証システムおよび同システムにおける認証情報委譲方法ならびにセキュリティデバイス
US20090037728A1 (en) * 2006-02-28 2009-02-05 Matsushita Electric Industrial Co., Ltd. Authentication System, CE Device, Mobile Terminal, Key Certificate Issuing Station, And Key Certificate Acquisition Method
JP2008022526A (ja) 2006-06-13 2008-01-31 Hitachi Ltd 属性証明書検証方法、属性認証局装置、サービス提供装置、および属性証明書検証システム
GB0612775D0 (en) * 2006-06-28 2006-08-09 Ibm An apparatus for securing a communications exchange between computers
US20080133414A1 (en) * 2006-12-04 2008-06-05 Samsung Electronics Co., Ltd. System and method for providing extended domain management when a primary device is unavailable
US8195934B1 (en) * 2007-05-03 2012-06-05 United Services Automobile Association (Usaa) Systems and methods for managing certificates
US8301877B2 (en) * 2008-03-10 2012-10-30 Secureauth Corporation System and method for configuring a valid duration period for a digital certificate
KR101096726B1 (ko) * 2008-05-19 2011-12-21 에스케이플래닛 주식회사 콘텐츠 drm 변환 시스템 및 방법과 이를 위한 인증 서버및 사용자 단말기
JP2010081154A (ja) 2008-09-25 2010-04-08 Fuji Xerox Co Ltd 情報処理装置、プログラム、及び情報処理システム
US20100205429A1 (en) * 2009-02-10 2010-08-12 Gm Global Technology Operations, Inc. System and method for verifying that a remote device is a trusted entity
CN101521883B (zh) * 2009-03-23 2011-01-19 中兴通讯股份有限公司 一种数字证书的更新和使用方法及系统
US20100268942A1 (en) * 2009-04-15 2010-10-21 Secuware Systems and Methods for Using Cryptographic Keys
US8364954B2 (en) * 2009-12-16 2013-01-29 Symantec Corporation Method and system for provisioning multiple digital certificates
US9680819B2 (en) * 2009-12-23 2017-06-13 Symantec Corporation Method and system for co-termination of digital certificates
JP2011160383A (ja) 2010-02-04 2011-08-18 Konica Minolta Business Technologies Inc 監視装置、監視方法および監視プログラム
WO2012042367A1 (en) * 2010-09-30 2012-04-05 Entersect International Limited Mobile handset identification and communication authentication
US9401911B2 (en) * 2011-02-10 2016-07-26 Microsoft Technology Licensing, Llc One-time password certificate renewal
JP5822489B2 (ja) * 2011-03-07 2015-11-24 キヤノン株式会社 情報処理装置及びコンピュータプログラム
US9754253B1 (en) * 2011-11-28 2017-09-05 Amazon Technologies, Inc. Conditioned use of certificates
US8843740B2 (en) * 2011-12-02 2014-09-23 Blackberry Limited Derived certificate based on changing identity
EP2600647B1 (en) * 2011-12-02 2015-03-18 BlackBerry Limited Derived certificate based on changing identity
US8856514B2 (en) * 2012-03-12 2014-10-07 International Business Machines Corporation Renewal processing of digital certificates in an asynchronous messaging environment
US8954733B2 (en) * 2012-03-23 2015-02-10 International Business Machines Corporation Embedded extrinsic source for digital certificate validation
CN102624531B (zh) * 2012-04-25 2014-12-03 西安西电捷通无线网络通信股份有限公司 一种数字证书自动申请方法和装置及系统
JP5958544B2 (ja) * 2012-09-06 2016-08-02 富士通株式会社 情報処理システム,情報処理方法,プログラム
CN102801532B (zh) * 2012-09-14 2015-07-08 江苏先安科技有限公司 一种多个数字证书的关联方法和验证方法
RU2514138C1 (ru) * 2012-09-28 2014-04-27 Закрытое акционерное общество "Лаборатория Касперского" Система и способ верификации сертификата открытого ключа с целью противодействия атакам типа "человек посередине"
JP6079394B2 (ja) 2013-04-11 2017-02-15 富士通株式会社 証明書生成方法、証明書生成装置、情報処理装置、通信機器、及びプログラム
DE102014222220B4 (de) * 2014-10-30 2018-10-18 Getemed Medizin- Und Informationstechnik Ag Verfahren und Anordnung zum Management für die ambulante Elektrokardiografie an einem Patienten
US9614833B1 (en) * 2014-10-31 2017-04-04 Symantec Corporation Automated certificate management for a website associated with multiple certificates
US10516542B2 (en) * 2017-03-08 2019-12-24 Amazon Technologies, Inc. Digital certificate issuance and monitoring

Also Published As

Publication number Publication date
KR20190137968A (ko) 2019-12-11
JP7393083B2 (ja) 2023-12-06
US9843452B2 (en) 2017-12-12
AU2015384754B2 (en) 2018-09-13
WO2016140724A2 (en) 2016-09-09
CN107005416B (zh) 2020-12-04
KR20170094276A (ko) 2017-08-17
US11936797B1 (en) 2024-03-19
EP3235169B1 (en) 2019-03-06
WO2016140724A3 (en) 2016-10-20
JP2022050548A (ja) 2022-03-30
CN107005416A (zh) 2017-08-01
JP7131756B2 (ja) 2022-09-06
EP3496333A1 (en) 2019-06-12
CN112491553A (zh) 2021-03-12
KR102177775B1 (ko) 2020-11-11
KR102054444B1 (ko) 2019-12-10
EP3235169A2 (en) 2017-10-25
US20160173287A1 (en) 2016-06-16
SG11201704594TA (en) 2017-07-28
CA2969237A1 (en) 2016-09-09
KR20200130491A (ko) 2020-11-18
CN112491553B (zh) 2025-03-04
SG10201802513TA (en) 2018-05-30
JP2019165492A (ja) 2019-09-26
EP3496333B1 (en) 2024-02-07
KR102451297B1 (ko) 2022-10-06
AU2015384754A1 (en) 2017-06-29
US11575522B2 (en) 2023-02-07
JP2017537548A (ja) 2017-12-14
US20180102905A1 (en) 2018-04-12
CA2969237C (en) 2020-03-31

Similar Documents

Publication Publication Date Title
JP7393083B2 (ja) 長期デジタル証明書の検証に基づく短期デジタル証明書の発行
US11777911B1 (en) Presigned URLs and customer keying
US10362039B2 (en) Permissions for hybrid distributed network resources
US10404477B1 (en) Synchronization of personal digital certificates
US10482231B1 (en) Context-based access controls
US10587617B2 (en) Broadcast-based trust establishment

Legal Events

Date Code Title Description
A621 Written request for application examination

Free format text: JAPANESE INTERMEDIATE CODE: A621

Effective date: 20170725

A977 Report on retrieval

Free format text: JAPANESE INTERMEDIATE CODE: A971007

Effective date: 20180531

A131 Notification of reasons for refusal

Free format text: JAPANESE INTERMEDIATE CODE: A131

Effective date: 20180619

A601 Written request for extension of time

Free format text: JAPANESE INTERMEDIATE CODE: A601

Effective date: 20180918

A521 Request for written amendment filed

Free format text: JAPANESE INTERMEDIATE CODE: A523

Effective date: 20181114

TRDD Decision of grant or rejection written
A01 Written decision to grant a patent or to grant a registration (utility model)

Free format text: JAPANESE INTERMEDIATE CODE: A01

Effective date: 20190423

A61 First payment of annual fees (during grant procedure)

Free format text: JAPANESE INTERMEDIATE CODE: A61

Effective date: 20190523

R150 Certificate of patent or registration of utility model

Ref document number: 6533292

Country of ref document: JP

Free format text: JAPANESE INTERMEDIATE CODE: R150

R250 Receipt of annual fees

Free format text: JAPANESE INTERMEDIATE CODE: R250

R250 Receipt of annual fees

Free format text: JAPANESE INTERMEDIATE CODE: R250

R250 Receipt of annual fees

Free format text: JAPANESE INTERMEDIATE CODE: R250

R250 Receipt of annual fees

Free format text: JAPANESE INTERMEDIATE CODE: R250